<?xml version="1.0" encoding="UTF-8"?> <rss
version="2.0"
xmlns:content="http://purl.org/rss/1.0/modules/content/"
xmlns:wfw="http://wellformedweb.org/CommentAPI/"
xmlns:dc="http://purl.org/dc/elements/1.1/"
xmlns:atom="http://www.w3.org/2005/Atom"
xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
><channel><title>Jedi Star &#187; browser safety</title> <atom:link href="http://jedi-star.com/postname/browser-safety/feed" rel="self" type="application/rss+xml" /><link>http://jedi-star.com</link> <description></description> <lastBuildDate>Tue, 06 Jul 2010 11:08:10 +0000</lastBuildDate> <generator>http://wordpress.org/?v=2.9.2</generator> <language>en</language> <sy:updatePeriod>hourly</sy:updatePeriod> <sy:updateFrequency>1</sy:updateFrequency> <item><title>Firefox does its bit to fight Clickjacking Attacks.</title><link>http://jedi-star.com/network-and-security/firefox-does-its-bit-to-fight-clickjacking-attacks</link> <comments>http://jedi-star.com/network-and-security/firefox-does-its-bit-to-fight-clickjacking-attacks#comments</comments> <pubDate>Thu, 16 Oct 2008 08:25:28 +0000</pubDate> <dc:creator>Brad</dc:creator> <category><![CDATA[Network and Security]]></category> <category><![CDATA[browser safety]]></category> <category><![CDATA[Clickjacking]]></category> <category><![CDATA[firefox]]></category> <category><![CDATA[Mozilla]]></category> <category><![CDATA[user-interface redress attacks]]></category><guid
isPermaLink="false">http://jedi-star.com/?p=745</guid> <description><![CDATA[
Mozilla the open-source company as always has done its bit in providing users with the safest way to surf the internet. Mozilla is offering a new plug-in that would for the Firefox Browser that blocks clickjacking which security researchers are calling on of the dangerous problem on the Web.
Clickjacking occurs when a user [...]Related posts:<ol><li><a
href='http://jedi-star.com/latest-news/now-find-your-location-using-firefox-geode' rel='bookmark' title='Permanent Link: Now find your location using Firefox Geode.'>Now find your location using Firefox Geode.</a></li><li><a
href='http://jedi-star.com/latest-news/firefox-30-does-the-magic-for-mozilla' rel='bookmark' title='Permanent Link: Firefox 3.0 does the magic for Mozilla.'>Firefox 3.0 does the magic for Mozilla.</a></li><li><a
href='http://jedi-star.com/computers/browser-war-at-its-best' rel='bookmark' title='Permanent Link: Browser War at its best.'>Browser War at its best.</a></li></ol>]]></description> <content:encoded><![CDATA[<p><!--[if gte mso 9]><xml> <w:WordDocument> <w:View>Normal</w:View> <w:Zoom>0</w:Zoom> <w:Compatibility> <w:BreakWrappedTables /> <w:SnapToGridInCell /> <w:WrapTextWithPunct /> <w:UseAsianBreakRules /> </w:Compatibility> <w:BrowserLevel>MicrosoftInternetExplorer4</w:BrowserLevel> </w:WordDocument> </xml><![endif]--> <!--[if gte mso 10]> <mce:style><!<br
/> /* Style Definitions */<br
/> table.MsoNormalTable<br
/> {mso-style-name:"Table Normal";<br
/> mso-tstyle-rowband-size:0;<br
/> mso-tstyle-colband-size:0;<br
/> mso-style-noshow:yes;<br
/> mso-style-parent:"";<br
/> mso-padding-alt:0in 5.4pt 0in 5.4pt;<br
/> mso-para-margin:0in;<br
/> mso-para-margin-bottom:.0001pt;<br
/> mso-pagination:widow-orphan;<br
/> font-size:10.0pt;<br
/> font-family:"Times New Roman";}<br
/> --> <!--[endif]--></p><p
class="MsoNormal" style="text-align: justify;"><strong>Mozilla</strong> the open-source company as always has done its bit in providing users with the safest way to surf the internet. <strong>Mozilla</strong> is offering a new plug-in that would for the <strong>Firefox Browser</strong> that blocks <strong>clickjacking</strong> which security researchers are calling on of the dangerous problem on the Web.</p><p
class="MsoNormal" style="text-align: justify;"><strong>Clickjacking</strong> occurs when a user a user accidently clicks on a invisible link which leads the person to a malicious site without their knowledge. This is possible due to the design feature in HTML which lets websites embed content from other sites. This means that every website is vulnerable.</p><p
class="MsoNormal" style="text-align: justify;"><a
href="http://jedi-star.com/wp-content/uploads/2008/10/mousegest.jpg"><img
class="alignnone size-medium wp-image-747" src="http://jedi-star.com/wp-content/uploads/2008/10/mousegest.jpg" alt="mousegest Firefox does its bit to fight Clickjacking Attacks." width="150" height="138" title="Firefox does its bit to fight Clickjacking Attacks." /></a></p><p
class="MsoNormal" style="text-align: justify;">The <strong>Firefox</strong> add-on NoScript is a very well known security Plug-in which is used to block all types of content in a webpage. However it is not a security scanner as it does not scan content with reference to a specific signature database to search for specific threats. It is a tool to block certain type of content. <strong>Firefox</strong> now comes with a added feature in this plug-in called ClearClick to fight <strong>Clickjacking</strong>.</p><p
class="MsoNormal" style="text-align: justify;"><strong>Clickjacking</strong> is also known as <strong>user-interface redress attacks</strong> which should be blocked by NoScript plug-in, however there are a few downsides for the same.</p><p
class="MsoNormal" style="text-align: justify;">But again the plug-in can only save users who have <strong>Firefox</strong>, the rest 70% who use other browsers are still at risk.</p><p
class="MsoNormal" style="text-align: justify;">To combat <strong>clickjacking</strong> other browsers will come up with a fix soon. The only thing is that <strong>Mozilla</strong> realized the dangers and the others are still not concerned about the same.</p><p
class="MsoNormal" style="text-align: justify;">However <strong>clickjacking</strong> is just not limited to websites, it can also be harmful for applications. A Live example of <strong>clickjacking</strong> was when a concept called “<strong>the clicking game</strong>” where people were told to click on a link on the right places to reconfigure the settings for the security for their webcams and microphone and in turn the victims gave access to their webcams and microphones.</p><p
class="MsoNormal" style="text-align: justify;">More insights into <strong>Clickjacking</strong>:</p><p
class="MsoNormal" style="text-align: justify;">In <strong>clickjacking</strong>, iframes and web page layers are used in DHTML in such as way that illegitimate buttons are overlaid on the existing legitimate buttons. The user when comes to a particular website thinks that he or she is clicking on a genuine link but they are instead clicking on something that’s harmful.</p><p
class="MsoNormal" style="text-align: justify;"><a
href="http://jedi-star.com/wp-content/uploads/2008/10/mouse.jpg"><img
class="alignnone size-medium wp-image-746" src="http://jedi-star.com/wp-content/uploads/2008/10/mouse.jpg" alt="mouse Firefox does its bit to fight Clickjacking Attacks." width="200" height="150" title="Firefox does its bit to fight Clickjacking Attacks." /></a></p><p
class="MsoNormal" style="text-align: justify;">It really an interesting thing actually as very little is known about it and that leads to no tools to detect if a particular website is affected. We also don’t know how widespread <strong>clickjacking</strong> is. To develop a tool for the same what we need is more incidents where people are affected to study and find all the things that are possible with <strong>clickjacking</strong>. But the only problem with that is that by the time we learn all that it is too late and it has done all the harm that it could do. It’s just like installing a burglar alarm after the burglar has cleaned up your house.</p><p
class="MsoNormal" style="text-align: justify;"><p
class="MsoNormal" style="text-align: justify;">How to disable <strong>Clickjacking</strong>?</p><p
class="MsoNormal" style="text-align: justify;">The <strong>best way</strong> is to <strong>disable Flash</strong>. In <strong>Firefox</strong> however you have the plug-in now to protect you but you also have the option of extension called <strong>Flashblock</strong> which <strong>disables Flash scripts</strong>. It leaves a blank placeholder where you had a flash script which can be enabled by clicking on it. For <strong>Microsoft</strong> <strong>Internet Explorer</strong> you have to make changes in the <strong>Windows Registry</strong>.</p><p>Related posts:<ol><li><a
href='http://jedi-star.com/latest-news/now-find-your-location-using-firefox-geode' rel='bookmark' title='Permanent Link: Now find your location using Firefox Geode.'>Now find your location using Firefox Geode.</a></li><li><a
href='http://jedi-star.com/latest-news/firefox-30-does-the-magic-for-mozilla' rel='bookmark' title='Permanent Link: Firefox 3.0 does the magic for Mozilla.'>Firefox 3.0 does the magic for Mozilla.</a></li><li><a
href='http://jedi-star.com/computers/browser-war-at-its-best' rel='bookmark' title='Permanent Link: Browser War at its best.'>Browser War at its best.</a></li></ol></p>]]></content:encoded> <wfw:commentRss>http://jedi-star.com/network-and-security/firefox-does-its-bit-to-fight-clickjacking-attacks/feed</wfw:commentRss> <slash:comments>1</slash:comments> </item> </channel> </rss>
<!-- This site's performance optimized by W3 Total Cache. Dramatically improve the speed and reliability of your blog!

Learn more about our WordPress Plugins: http://www.w3-edge.com/wordpress-plugins/

Minified using disk
Page Caching using disk (user agent is rejected)
Database Caching 22/55 queries in 0.357 seconds using disk

Served from: rotherham.webhosting.uk.com @ 2010-09-10 08:39:34 -->